3DSecure 2.0 3DS Authorization Challenge Cross Site Scripting –
– Multiple reflected cross site scripting vulnerabilities exist in the 3DS Authorization Challenge of 3DSecure version 2.0. These flaws allow attackers to inject arbitrary web scripts, CSS, or HTML through the manipulation of the params parameter in the request URL. – Read More – Packet Storm